Hitachi Products MDAC "RDS.Dataspace" ActiveX Remote Code Execution Vulnerability
Technical Description



A vulnerability has been identified in various Hitachi products, which could be exploited by attackers to compromise a vulnerable system. For additional information, see : FrSIRT/ADV-2006-1319



Affected Products



Hitachi DBPARTNER ODBC Driver version 01-06 through 01-11

Hitachi DBPARTNER ODBC 3.0 Driver version 01-00 through 01-03

Hitachi DABroker for ODBC version 01-00 through 01-02

Hitachi DBPARTNER2 Client version 01-05 through 01-12

Hitachi DBPARTNER2 COBOL Components version 01-00 through 01-00-/A

Hitachi DBPARTNER2 Multiuser Option version 01-00 through 01-01

Hitachi DBPARTNER2 Client for Jichitai version 01-00

Hitachi HITSENSER5 Professional for Cosmicube version 01-00 through 02-80

Hitachi HITSENSER5 Standard for Cosmicube version 01-00 through 02-80

Hitachi HITSENSER5 Professional for RDB version 01-10 through 02-80

Hitachi HITSENSER5 Standard for RDB version 01-10 through 02-80

Hitachi HITSENSER5 Professional version 01-10 through 02-80

Hitachi HITSENSER5 Standard version 01-10 through 02-80

Hitachi HITSENSER5 Web CPU license version 01-10 through 02-80

Hitachi HITSENSER5 Web connection license



Solution



Apply patches :

http://www.microsoft.com/technet/security/bulletin/MS06-014.mspx

더보기

댓글,